/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Have I Been Pwned: hackers stole 71K+ Nvidia staff credentials, including email IDs and Windows password hashes, many of which were “cracked and circulated”

The ransomware group that claims to have taken a terabyte of data from chipmaking giant Nvidia is threatening to release the company's …

TechCrunch Carly Page

Context & Ripple Effects

Nvidia first described internal outages as an incident, then confirmed that employee data and proprietary information had leaked in the claimed 1TB theft. The newly identified credential set makes the employee-facing exposure of that earlier confirmed leak more concrete.

The breach was already escalating beyond data disclosure: researchers later reported that leaked Nvidia code-signing certificates were being used to sign Windows malware and hacking tools. Together, the reports show stolen material being turned into operational access and weaponization.

First-order effects

  • Nvidia employees whose Windows password hashes were cracked and circulated face immediate exposure wherever those passwords or related account credentials are still in use, forcing Nvidia to prioritize credential resets and account protection.
  • Nvidia's security response now has to address both the disclosed employee records and the misuse of leaked code-signing certificates against Windows users.

Second-order effects

  • Windows security teams and Nvidia customers must treat software signed with the exposed certificates as a potential delivery path for malware, widening the incident beyond Nvidia's own network.
  • The credential disclosure gives the Lapsus$ pressure campaign additional leverage alongside its threat to release stolen source code unless Nvidia changes GPU mining limits and driver licensing.

Third-order effects

  • The incident illustrates how a single corporate intrusion can combine workforce identity data, proprietary code, and signing infrastructure into separate attack paths, raising the value of protecting identity and software-release systems together.
  • If this pattern persists, major technology vendors will be judged not only on whether they contain a breach, but on how quickly they revoke or replace assets that attackers can reuse outside the company.

The trend: High-value corporate breaches are increasingly becoming multi-stage campaigns in which stolen employee credentials and software-trust assets extend the damage beyond the initial data theft.

Discussion

  • @biscottoplays @biscottoplays on x
    On a fundamental level I just cannot comprehend how the brains of crypto miners are wired. They ain't just built different, they're built outright incorrectly https://twitter.com/... https://twitter.com/...
  • @rosesilicon @rosesilicon on x
    “Remove the mining limit or we leak switch 2 and your source code” wack world https://twitter.com/...
  • @turtlekiosk @turtlekiosk on x
    “unusual demands” they want open source nvidia drivers lol https://arstechnica.com/... https://twitter.com/...
  • @tomgara Tom Gara on x
    Hackers stole the designs for Nvidia's chips and its source code, and are threatening to release it — but they're not asking for a ransom payment! They're demanding Nvidia remove a feature on their GPUs that makes them slower at mining Ethereum https://arstechnica.com/...
  • @dinosn Nicolas Krassas on x
    NVIDIA - 71,335 breached accounts https://haveibeenpwned.com/...
  • @nintendorumor @nintendorumor on x
    Further information about the Switch 2 could be about to leak, with the group Lapsus$ claiming that it will “release the entire silicon chip files” for Nvidia's recent GPUs, unless the company removes a feature from it's GPUs that limits Ethereum mining. https://arstechnica.com/.…
  • @jonbernhardt Nathan Bernhardt on x
    these people should be [static envelops this tweet preventing the transmission of the rest of the sentence] https://twitter.com/...
  • @marshacollier Marsha Collier on x
    Thousands of Nvidia employee passwords leak online as hackers' ransom deadline looms According to data #breach monitoring website Have I Been Pwned, the hackers stole the credentials of more than 71,000 Nvidia employees #security #tech https://techcrunch.com/... https://twitter.c…